<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>the back room tech &#187; firewall</title>
	<atom:link href="http://thebackroomtech.com/tag/firewall/feed/" rel="self" type="application/rss+xml" />
	<link>http://thebackroomtech.com</link>
	<description>serving up the info back room techs everywhere find interesting</description>
	<lastBuildDate>Thu, 19 Nov 2009 18:19:12 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<cloud domain='thebackroomtech.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://www.gravatar.com/blavatar/a33574f02dbbfb9cc6104c10ba197e25?s=96&#038;d=http://s.wordpress.com/i/buttonw-com.png</url>
		<title>the back room tech &#187; firewall</title>
		<link>http://thebackroomtech.com</link>
	</image>
			<item>
		<title>Windows XP firewall service is enabled after installing XP SP3 &#8211; even if it was previously disabled</title>
		<link>http://thebackroomtech.com/2008/10/03/windows-xp-firewall-service-is-enabled-after-installing-xp-sp3-even-if-it-was-previously-disabled/</link>
		<comments>http://thebackroomtech.com/2008/10/03/windows-xp-firewall-service-is-enabled-after-installing-xp-sp3-even-if-it-was-previously-disabled/#comments</comments>
		<pubDate>Fri, 03 Oct 2008 11:59:28 +0000</pubDate>
		<dc:creator>Julie</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[service]]></category>
		<category><![CDATA[XP SP3]]></category>

		<guid isPermaLink="false">http://thebackroomtech.wordpress.com/?p=1004</guid>
		<description><![CDATA[If Windows XP SP2 firewall service is set to manual or disabled when Windows XP SP3 is applied, the Windows Firewall/Internet Connection Sharing (ICS) service and Security Cetner service will be changed to automatic startup.  This behavior is by design, for the purpose of increasing the security of Windows XP.
This setting will remain in effect for [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=1004&subd=thebackroomtech&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><!--StartFragment-->If Windows XP SP2 firewall <span style="text-decoration:underline;">service</span> is set to manual or disabled when Windows XP SP3 is applied, the Windows Firewall/Internet Connection Sharing (ICS) service and Security Cetner service will be changed to automatic startup.  This behavior is by design, for the purpose of increasing the security of Windows XP.</p>
<div>This setting will remain in effect for computers that had the service startup manually altered.  </div>
<div> </div>
<div><a href="http://blogs.technet.com/networking/archive/2008/09/19/windows-firewall-service-starts-automatically-after-installing-windows-xp-service-pack-3.aspx" target="_blank">According to</a> the Microsoft Enterprise Networking Team:</div>
<div>If the service is administratively disabled via domain Group Policy, it will again be disabled after subsequent application of Group Policy. The automatic service startup should only be seen on the first reboot after applying Service Pack 3. To cause GPO settings to be updated immediately on a client, run <em>gpupdate /force</em> from a command prompt.</div>
  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/thebackroomtech.wordpress.com/1004/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/thebackroomtech.wordpress.com/1004/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/thebackroomtech.wordpress.com/1004/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/thebackroomtech.wordpress.com/1004/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/thebackroomtech.wordpress.com/1004/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/thebackroomtech.wordpress.com/1004/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/thebackroomtech.wordpress.com/1004/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/thebackroomtech.wordpress.com/1004/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/thebackroomtech.wordpress.com/1004/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/thebackroomtech.wordpress.com/1004/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=1004&subd=thebackroomtech&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://thebackroomtech.com/2008/10/03/windows-xp-firewall-service-is-enabled-after-installing-xp-sp3-even-if-it-was-previously-disabled/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bc45e50eb9d841ff9cf17d75fe766df7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Julie</media:title>
		</media:content>
	</item>
		<item>
		<title>Ports to open on a firewall for SBS 2003 communication</title>
		<link>http://thebackroomtech.com/2008/06/04/ports-to-open-on-a-firewall-for-sbs-2003-communication/</link>
		<comments>http://thebackroomtech.com/2008/06/04/ports-to-open-on-a-firewall-for-sbs-2003-communication/#comments</comments>
		<pubDate>Wed, 04 Jun 2008 09:36:27 +0000</pubDate>
		<dc:creator>Julie</dc:creator>
				<category><![CDATA[SBS]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[Ports]]></category>

		<guid isPermaLink="false">http://thebackroomtech.wordpress.com/?p=354</guid>
		<description><![CDATA[Everytime I setup a Microsoft 2003 Small Business Server or troubleshoot connectivity problems to the SBS server I have to lookup the ports that are required to pass through a firewall for proper communication to occur with the various SBS components.  Since I&#8217;m tired of Googling for them, I&#8217;ve decided to post them here for [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=354&subd=thebackroomtech&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Everytime I setup a Microsoft 2003 Small Business Server or troubleshoot connectivity problems to the SBS server I have to lookup the <a href="http://www.microsoft.com/smallbusiness/support/articles/sec_sbs2003_network.mspx#ENC" target="_blank">ports that are required to pass through a firewall</a> for proper communication to occur with the various SBS components.  Since I&#8217;m tired of Googling for them, I&#8217;ve decided to post them here for my quick reference.  Hopefully others will find this helpful as well:</p>
<p><span style="text-decoration:underline;">SBS firewall ports</span></p>
<p>SMTP - port 25 &#8211; email</p>
<p>http - port 80 &#8211; web server including wwwroot and server usage and performance reports</p>
<p>https &#8211; port 443 &#8211; secure web server.  Includes OWA and OMA</p>
<p>Windows SharePoint Services intranet site &#8211; port 444 for allowing users to securely access the intranet Web site created by SharePoint Services from the Internet</p>
<p>PPTP - port 1723 &#8211; VPN connections</p>
<p>Remote Web Workplace (RWW)  - ports 443 and 4125</p>
<p>Remote Desktop (RDP direct) &#8211; port 3389.  If using RDP through RWW this is not required.</p>
<p><span style="text-decoration:underline;">Other SBS ports</span></p>
<p>POP3 &#8211; port 110</p>
<p>IMAP &#8211; port 143</p>
<p>IMAPs &#8211; port 993</p>
<p>FTP &#8211; port 21</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/thebackroomtech.wordpress.com/354/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/thebackroomtech.wordpress.com/354/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/thebackroomtech.wordpress.com/354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/thebackroomtech.wordpress.com/354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/thebackroomtech.wordpress.com/354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/thebackroomtech.wordpress.com/354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/thebackroomtech.wordpress.com/354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/thebackroomtech.wordpress.com/354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/thebackroomtech.wordpress.com/354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/thebackroomtech.wordpress.com/354/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/thebackroomtech.wordpress.com/354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/thebackroomtech.wordpress.com/354/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=354&subd=thebackroomtech&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://thebackroomtech.com/2008/06/04/ports-to-open-on-a-firewall-for-sbs-2003-communication/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bc45e50eb9d841ff9cf17d75fe766df7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Julie</media:title>
		</media:content>
	</item>
		<item>
		<title>Windows Server Firewall Exceptions for Remote Administration Tools</title>
		<link>http://thebackroomtech.com/2008/04/17/windows-server-firewall-exceptions-for-remote-administration-tools/</link>
		<comments>http://thebackroomtech.com/2008/04/17/windows-server-firewall-exceptions-for-remote-administration-tools/#comments</comments>
		<pubDate>Thu, 17 Apr 2008 15:30:57 +0000</pubDate>
		<dc:creator>Julie</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[Remote Administration]]></category>
		<category><![CDATA[Windows Server]]></category>

		<guid isPermaLink="false">http://thebackroomtech.wordpress.com/?p=324</guid>
		<description><![CDATA[Microsoft has a web page that lists the various tools you can use to remotely administer a Windows Server system.  The page lists each remote administration tool and the steps that are required to successfully use the tool with the Windows Firewall service enabled on the local or remote machine.
Firewall configuration details for the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=324&subd=thebackroomtech&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Microsoft has a <a href="http://technet2.microsoft.com/windowsserver/en/library/e0bb5886-478e-4408-bb52-544d0ab0f4461033.mspx?mfr=true" target="_blank">web page</a> that lists the various tools you can use to remotely administer a Windows Server system.  The page lists each remote administration tool and the steps that are required to successfully use the tool with the Windows Firewall service enabled on the local or remote machine.</p>
<p>Firewall configuration details for the following remote administration tools are provided:</p>
<ul>
<li>Active Directory Domains and Trusts (Windows Firewall: domain)</li>
<li> Active Directory Management (Windows Firewall: admgmt)</li>
<li> Active Directory Schema Management (Windows Firewall: schmmgmt)</li>
<li> Active Directory Sites and Services (Windows Firewall: dssite)</li>
<li> Active Directory Users and Computers (Windows Firewall: dsa)</li>
<li> Authorization Manager (Windows Firewall: azman)</li>
<li> Certificate Templates (Windows Firewall: certtmpl)</li>
<li> Certificates (Windows Firewall: certmgr)</li>
<li> Certification Authority (Windows Firewall: certsrv)</li>
<li> Certutil command (Windows Firewall: certutil)</li>
<li> Cluster Administrator (Windows Firewall: cluadmin)</li>
<li> Cluster command (Windows Firewall: cluster)</li>
<li> Component Services (Windows Firewall: comexp)</li>
<li> Computer Management (Windows Firewall: compmgmt)</li>
<li> Connection Manager Administration Kit Binaries (Windows Firewall: cmbins)</li>
<li> Connection Manager Administration Kit Wizard (Windows Firewall: cmak)</li>
<li> Device Manager (Windows Firewall: devmgr)</li>
<li> Dfscmd command (Windows Firewall: dfscmd)</li>
<li> DHCP (Windows Firewall: dhcpmgmt)</li>
<li> Directory Service Utilities (Windows Firewall: ntdsutil)</li>
<li> Disk Defragmenter (Windows Firewall: dfrg)</li>
<li> Disk Management (Windows Firewall: diskmgmt)</li>
<li> Distributed File System (Windows Firewall: dfsgui)</li>
<li> DNS Management (Windows Firewall: dnsmgmt)</li>
<li> Dsadd command (Windows Firewall: dsadd)</li>
<li> Dsget command (Windows Firewall: dsget)</li>
<li> Dsmod command (Windows Firewall: dsmod)</li>
<li> Dsmove command (Windows Firewall: dsmove)</li>
<li> Dsquery command (Windows Firewall: dsquery)</li>
<li> Dsrm command (Windows Firewall: dsrm)</li>
<li> Event Viewer (Windows Firewall: eventvwr)</li>
<li> Fax client console (Windows Firewall: fxsclnt)</li>
<li> Fax Service Manager (Windows Firewall: fxsadmin)</li>
<li> File Server Management (Windows Firewall: filesvr)</li>
<li> Group Policy Object Editor (Windows Firewall: gpedit)</li>
<li> IIS Application Management script (Windows Firewall: iisapp)</li>
<li> IIS Backup script (Windows Firewall: iisback)</li>
<li> IIS Configuration script (Windows Firewall: iiscnfg)</li>
<li> IIS FTP script (Windows Firewall: iisftp)</li>
<li> IIS FTP Virtual Directory script (Windows Firewall: iisftpdr)</li>
<li> IIS Help script (Windows Firewall: iisschlp)</li>
<li> IIS Service Extension script (Windows Firewall: iisext)</li>
<li> IIS Virtual Directory script (Windows Firewall: iisvdir)</li>
<li> IIS Web Management script (Windows Firewall: iisweb)</li>
<li> Indexing Service (Windows Firewall: ciadv)</li>
<li> Internet Authentication Service (Windows Firewall: iasmsc)</li>
<li> Internet Information Services (IIS) Manager (Windows Firewall: iis)</li>
<li> IP Security Monitor (Windows Firewall: ipsecmon)</li>
<li> IP Security Policies (Windows Firewall: ipsecpol)</li>
<li> Local Security Settings (Windows Firewall: secpol)</li>
<li> Local Users and Groups (Windows Firewall: lusrmgr)</li>
<li> Network Load Balancing Manager (Windows Firewall: nlbmgr)</li>
<li> Network Monitor tools (Windows Firewall: netmon)</li>
<li> Performance (Windows Firewall: perfmon)</li>
<li> POP3 Service (Windows Firewall: p3server)</li>
<li> Public Key Management (Windows Firewall: pkmgmt)</li>
<li> Remote Desktops (Windows Firewall: tsmmc)</li>
<li> Remote Storage (Windows Firewall: rsadmin)</li>
<li> Removable Storage (Windows Firewall: ntmsmgr)</li>
<li> Removable Storage Operator Requests (Windows Firewall: ntmsoprq)</li>
<li> Resultant Set of Policy (Windows Firewall: rsop)</li>
<li> Routing and Remote Access (Windows Firewall: rrasmgmt)</li>
<li> Security Configuration and Analysis (Windows Firewall: sca)</li>
<li> Services (Windows Firewall: services)</li>
<li> Shared Folders (Windows Firewall: fsmgmt)</li>
<li> Telephony (Windows Firewall: tapimgmt)</li>
<li> Terminal Services Configuration (Windows Firewall: tscc)</li>
<li> Terminal Services Manager (Windows Firewall: tsadmin)</li>
<li> UDDI Services Console (Windows Firewall: uddi)</li>
<li> Windows Management Infrastructure (Windows Firewall: wmimgmt)</li>
<li> Windows Media Services (Windows Firewall: wmsadmin)</li>
<li> Windows Server 2003 Administration Tools Pack (Windows Firewall: adminpak)</li>
<li> WINS (Windows Firewall: winsmgmt)</li>
<li> Wireless Monitor (Windows Firewall: wiremon)</li>
</ul>
<p>Microsoft also has a guide to Windows firewall configuration by <a href="http://technet2.microsoft.com/windowsserver/en/library/09008ddd-0f9b-4c1c-9a15-d41c709d95691033.mspx?mfr=true" target="_blank">server role</a>.</p>
<p>Thanks to David for the <a href="http://uksbsguy.com/blogs/doverton/archive/2008/04/10/how-to-get-dns-and-dhcp-working-on-a-windows-server-from-behind-the-windows-firewall.aspx" target="_blank">pointer to this article</a>.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/thebackroomtech.wordpress.com/324/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/thebackroomtech.wordpress.com/324/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/thebackroomtech.wordpress.com/324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/thebackroomtech.wordpress.com/324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/thebackroomtech.wordpress.com/324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/thebackroomtech.wordpress.com/324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/thebackroomtech.wordpress.com/324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/thebackroomtech.wordpress.com/324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/thebackroomtech.wordpress.com/324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/thebackroomtech.wordpress.com/324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/thebackroomtech.wordpress.com/324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/thebackroomtech.wordpress.com/324/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=324&subd=thebackroomtech&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://thebackroomtech.com/2008/04/17/windows-server-firewall-exceptions-for-remote-administration-tools/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bc45e50eb9d841ff9cf17d75fe766df7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Julie</media:title>
		</media:content>
	</item>
		<item>
		<title>Windows Server 2008 Firewall Ports</title>
		<link>http://thebackroomtech.com/2008/02/28/windows-server-2008-firewall-ports/</link>
		<comments>http://thebackroomtech.com/2008/02/28/windows-server-2008-firewall-ports/#comments</comments>
		<pubDate>Thu, 28 Feb 2008 10:03:58 +0000</pubDate>
		<dc:creator>Julie</dc:creator>
				<category><![CDATA[Windows]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[Ports]]></category>
		<category><![CDATA[Server 2008]]></category>

		<guid isPermaLink="false">http://thebackroomtech.wordpress.com/?p=274</guid>
		<description><![CDATA[Mark Empson has published a nice list of firewall ports used by Windows Server 2008.



Possible Rule name


Description


Port


Path




Active Directory Domain Controller &#8211; LDAP (TCP-In)


Inbound rule for the Active Directory Domain Controller service to allow remote LDAP traffic. (TCP 389)


389


%systemroot%\System32\lsass.exe




Active Directory Domain Controller &#8211; LDAP (UDP-In)


Inbound rule for the Active Directory Domain Controller service to allow remote [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=274&subd=thebackroomtech&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><a href="http://blogs.technet.com/mempson" target="_blank">Mark Empson</a> has published a nice <a href="http://blogs.technet.com/mempson/archive/2008/02/26/key-firewall-ports-for-windows-server-2008.aspx" target="_blank">list of firewall ports</a> used by Windows Server 2008.</p>
<table style="width:463.5pt;border-collapse:collapse;" class="MsoNormalTable" border="0" cellpadding="0" cellspacing="0" width="618">
<tr style="height:27.65pt;">
<td style="border:1pt solid black;background:#ccc0d9 none repeat scroll 0 50%;width:92.2pt;height:27.65pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Possible Rule name</span></p>
</td>
<td style="background:#ccc0d9 none repeat scroll 0 50%;width:99.8pt;height:27.65pt;border-color:black black black #f0f0f0;border-style:solid solid solid none;border-width:1pt 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Description</span></p>
</td>
<td style="background:#ccc0d9 none repeat scroll 0 50%;width:51.55pt;height:27.65pt;border-color:black black black #f0f0f0;border-style:solid solid solid none;border-width:1pt 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">Port</span></p>
</td>
<td style="background:#ccc0d9 none repeat scroll 0 50%;width:219.7pt;height:27.65pt;border-color:black black black #f0f0f0;border-style:solid solid solid none;border-width:1pt 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Path</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; LDAP (TCP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow remote LDAP traffic. (TCP 389)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">389</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; LDAP (UDP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow remote LDAP traffic. (UDP 389)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">389</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; LDAP for Global Catalog (TCP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow remote Global Catalog traffic. (TCP 3268)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">3268</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; NetBIOS name resolution (UDP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow NetBIOS name resolution. (UDP 138)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">138</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">System</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; SAM/LSA (NP-TCP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to be remotely managed over Named Pipes. (TCP 445)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">445</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">System</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; SAM/LSA (NP-UDP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to be remotely managed over Named Pipes. (UDP 445)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">445</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">System</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; Secure LDAP (TCP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow remote Secure LDAP traffic. (TCP 636)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">636</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; Secure LDAP for Global Catalog (TCP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow remote Secure Global Catalog traffic. (TCP 3269)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">3269</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller &#8211; W32Time (NTP-UDP-In)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the Active Directory Domain Controller service to allow NTP traffic for the Windows Time service. (UDP 123)</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;text-align:right;margin:0;" align="right"><span style="color:black;">123</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\svchost.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller (RPC)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule to allow remote RPC/TCP access to the Active Directory Domain Controller service.</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Dynamic RPC</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:45pt;">
<td style="width:92.2pt;height:45pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller (RPC-EPMAP)</span></p>
</td>
<td style="width:99.8pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the RPCSS service to allow RPC/TCP traffic to the Active Directory Domain Controller service.</span></p>
</td>
<td style="width:51.55pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">135</span></p>
</td>
<td style="width:219.7pt;height:45pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\svchost.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller (TCP-Out)</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Outbound rule for the Active Directory Domain Controller service. (TCP)</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Any</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="top" width="123">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Active Directory Domain Controller (UDP-Out)</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Outbound rule for the Active Directory Domain Controller service. (UDP)</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Any</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\lsass.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="bottom" width="123">
<p class="MsoNormal" style="margin:6pt 0 3pt 11.35pt;"><span style="font-size:11pt;color:black;line-height:110%;font-family:'Calibri','sans-serif';">DNS (TCP, Incoming)</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">DNS inbound</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">53</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\dns.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="bottom" width="123">
<p class="MsoNormal" style="margin:6pt 0 3pt 11.35pt;"><span style="font-size:11pt;color:black;line-height:110%;font-family:'Calibri','sans-serif';">DNS (UDP, Incoming)</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">DNS inbound</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">53</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\dns.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="bottom" width="123">
<p class="MsoNormal" style="margin:6pt 0 3pt 11.35pt;"><span style="font-size:11pt;color:black;line-height:110%;font-family:'Calibri','sans-serif';">DNS (TCP, outbound)</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">DNS outbound</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">53</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\dns.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="bottom" width="123">
<p class="MsoNormal" style="margin:6pt 0 3pt 11.35pt;"><span style="font-size:11pt;color:black;line-height:110%;font-family:'Calibri','sans-serif';">DNS (UDP, outbound)</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">DNS outbound</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">53</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\dns.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="bottom" width="123">
<p class="MsoNormal" style="margin:6pt 0 3pt 11.35pt;"><span style="font-size:11pt;color:black;line-height:110%;font-family:'Calibri','sans-serif';">DNS RPC, incoming</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule for the RPCSS service to allow RPC/TCP traffic to the DNS Service</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">135</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\dns.exe</span></p>
</td>
</tr>
<tr style="height:30pt;">
<td style="width:92.2pt;height:30pt;background-color:transparent;border-color:#f0f0f0 black black;border-style:none solid solid;border-width:medium 1pt 1pt;padding:0 5.4pt;" valign="bottom" width="123">
<p class="MsoNormal" style="margin:6pt 0 3pt 11.35pt;"><span style="font-size:11pt;color:black;line-height:110%;font-family:'Calibri','sans-serif';">DNS RPC, incoming</span></p>
</td>
<td style="width:99.8pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="133">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Inbound rule to allow remote RPC/TCP access to the DNS service</span></p>
</td>
<td style="width:51.55pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="69">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">Dynamic RPC</span></p>
</td>
<td style="width:219.7pt;height:30pt;background-color:transparent;border-style:none solid solid none;border-width:medium 1pt 1pt medium;padding:0 5.4pt;" valign="top" width="293">
<p class="MsoNormal" style="line-height:normal;margin:0;"><span style="color:black;">%systemroot%\System32\dns.exe</span></p>
</td>
</tr>
</table>
<p>Nice reference Mark.  I was just looking for a similar list for Windows Server 2003 R2 Domain Controllers, and had to pull the information from a variety of sources.  I couldn&#8217;t find a nice summary like you&#8217;ve made.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/thebackroomtech.wordpress.com/274/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/thebackroomtech.wordpress.com/274/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/thebackroomtech.wordpress.com/274/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/thebackroomtech.wordpress.com/274/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/thebackroomtech.wordpress.com/274/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/thebackroomtech.wordpress.com/274/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/thebackroomtech.wordpress.com/274/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/thebackroomtech.wordpress.com/274/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/thebackroomtech.wordpress.com/274/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/thebackroomtech.wordpress.com/274/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/thebackroomtech.wordpress.com/274/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/thebackroomtech.wordpress.com/274/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=274&subd=thebackroomtech&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://thebackroomtech.com/2008/02/28/windows-server-2008-firewall-ports/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bc45e50eb9d841ff9cf17d75fe766df7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Julie</media:title>
		</media:content>
	</item>
		<item>
		<title>Kiwi CatTools: Schedule automatic backups (and perform other activities) on your network devices</title>
		<link>http://thebackroomtech.com/2008/02/18/kiwi-cattools-schedule-automatic-backups-and-perform-other-activities-on-your-network-devices/</link>
		<comments>http://thebackroomtech.com/2008/02/18/kiwi-cattools-schedule-automatic-backups-and-perform-other-activities-on-your-network-devices/#comments</comments>
		<pubDate>Mon, 18 Feb 2008 10:43:23 +0000</pubDate>
		<dc:creator>Julie</dc:creator>
				<category><![CDATA[utilities]]></category>
		<category><![CDATA[backup]]></category>
		<category><![CDATA[CatTools]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[router]]></category>
		<category><![CDATA[script]]></category>
		<category><![CDATA[switch]]></category>

		<guid isPermaLink="false">http://thebackroomtech.wordpress.com/?p=265</guid>
		<description><![CDATA[Kiwi CatTools is a free (up to five devices) customizable utility that help network administrators automate configuration backups of their network devices such as routers and switches.  It provides email notification and compare reports, highlighting configuration changes.  Some of the features of CatTools includes:

Instant or scheduled device configuration backups where any differences can [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=265&subd=thebackroomtech&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><a href="http://www.kiwisyslog.com/kiwi-cattools-overview/" target="_blank">Kiwi CatTools</a> is a free (up to five devices) customizable utility that help network administrators automate configuration backups of their network devices such as routers and switches.  It provides email notification and compare reports, highlighting configuration changes.  Some of the features of CatTools includes:</p>
<ul>
<li>Instant or scheduled device configuration backups where any differences can be instantly emailed to you.</li>
<li>Send CLI commands via Telnet or SSH to many devices at once.</li>
<li>Change device configuration at scheduled times.</li>
<li>Change all of your network device passwords at once.</li>
<li>Generate various device reports such as Port, MAC, ARP and Version.</li>
<li>Compare the startup and running configuration of devices.</li>
</ul>
<p>All versions of CatTools have the same functionality. The extent of that functionality however is limited by the <a href="http://www.kiwisyslog.com/kiwi-cattools-licensing/">license</a> you are running.</p>
<table border="0" width="677">
<tr>
<td>
<pre></pre>
</td>
<td align="center">
<pre>Freeware   Edition</pre>
</td>
<td align="center">
<pre>Engineer   Edition</pre>
</td>
<td align="center">
<pre>Professional   Edition</pre>
</td>
<td align="center">
<pre>Enterprise Edition</pre>
</td>
</tr>
<tr>
<td>
<pre>Number of Devices in database</pre>
</td>
<td align="right">
<pre>5</pre>
</td>
<td align="right">
<pre>20</pre>
</td>
<td align="right">
<pre>500</pre>
</td>
<td align="right" valign="top">
<pre>Unlimited</pre>
</td>
</tr>
<tr>
<td>
<pre>Number of Activities in database</pre>
</td>
<td align="right">
<pre>5</pre>
</td>
<td align="right">
<pre>20</pre>
</td>
<td align="right">
<pre>50</pre>
</td>
<td align="right" valign="top">
<pre>Unlimited</pre>
</td>
</tr>
<tr>
<td>
<pre>Simultaneous TFTP sessions</pre>
</td>
<td align="right">
<pre>2</pre>
</td>
<td align="right">
<pre> 10</pre>
</td>
<td align="right">
<pre> 20</pre>
</td>
<td align="right" valign="top">
<pre>100</pre>
</td>
</tr>
<tr>
<td>
<pre>Simultaneous Device connections</pre>
</td>
<td align="right">
<pre>1</pre>
</td>
<td align="right">
<pre> 5</pre>
</td>
<td align="right">
<pre> 10</pre>
</td>
<td align="right" valign="top">
<pre>30</pre>
</td>
</tr>
</table>
<p>Check out the following <a href="http://www.kiwisyslog.com/-kiwi-cattools-screenshots/" target="_blank">screenshots of the product</a>.  My only disappointment with the product was that there was no Sonicwall firewall preconfigured template.  Luckily, there&#8217;s detailed instructions on how to define your own devices and activities.  The premise is if your device supports Telnet, SSH1, SSH1.5 (Cisco), or SSH2 connectivity, you should be able to script automatic backups and perform other activities on it.</p>
<p>See the <a href="http://www.kiwisyslog.com/wrapper/devices-supported/" target="_blank">list of supported devices</a> and an overview of the <a href="http://www.kiwisyslog.com/kiwi-cattools-activities/" target="_blank">pre-configured activities</a>.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/thebackroomtech.wordpress.com/265/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/thebackroomtech.wordpress.com/265/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/thebackroomtech.wordpress.com/265/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/thebackroomtech.wordpress.com/265/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/thebackroomtech.wordpress.com/265/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/thebackroomtech.wordpress.com/265/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/thebackroomtech.wordpress.com/265/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/thebackroomtech.wordpress.com/265/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/thebackroomtech.wordpress.com/265/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/thebackroomtech.wordpress.com/265/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/thebackroomtech.wordpress.com/265/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/thebackroomtech.wordpress.com/265/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=265&subd=thebackroomtech&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://thebackroomtech.com/2008/02/18/kiwi-cattools-schedule-automatic-backups-and-perform-other-activities-on-your-network-devices/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bc45e50eb9d841ff9cf17d75fe766df7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Julie</media:title>
		</media:content>
	</item>
		<item>
		<title>Online port forwarding tester</title>
		<link>http://thebackroomtech.com/2008/01/21/online-port-forwarding-tester/</link>
		<comments>http://thebackroomtech.com/2008/01/21/online-port-forwarding-tester/#comments</comments>
		<pubDate>Mon, 21 Jan 2008 10:07:15 +0000</pubDate>
		<dc:creator>Julie</dc:creator>
				<category><![CDATA[utilities]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[port forwarding]]></category>
		<category><![CDATA[router]]></category>
		<category><![CDATA[testing]]></category>

		<guid isPermaLink="false">http://thebackroomtech.wordpress.com/2008/01/21/online-port-forwarding-tester/</guid>
		<description><![CDATA[Having problems getting applications to work through your firewall or router?  Use the online Port Forwarding Tester to determine if your device is properly configured to pass traffic through the appropriate ports.
This application will automatically detect the public IP address your browser is originating from, or you can specify the IP of your choice. [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=245&subd=thebackroomtech&ref=&feed=1" />]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Having problems getting applications to work through your firewall or router?  Use the online <a href="http://www.yougetsignal.com/openPortsTool/" target="_blank">Port Forwarding Tester</a> to determine if your device is properly configured to pass traffic through the appropriate ports.</p>
<p>This application will automatically detect the public IP address your browser is originating from, or you can specify the IP of your choice.  Next, enter the port number to test, and press the check button.  The web site will tell you if that port is opened or closed.</p>
<p>If you&#8217;re note sure how to open ports on your particular router, check out <a href="http://www.portforward.com/english/routers/port_forwarding/routerindex.htm" target="_blank">portforward.com</a>. They have a <a href="http://www.portforward.com/english/routers/port_forwarding/routerindex.htm" target="_blank">detailed list of routers and firewalls</a> with step by step directions on setting up port forwarding for different devices.</p>
<p>If you need more information on what port forwarding is and why you would want to enable it, <a href="http://www.portforward.com/help/pfprogression.htm" target="_blank">start here</a> or checkout <a href="http://www.portforward.com/help.htm" target="_blank">the FAQ</a>.  There is also a <a href="http://www.portforward.com/cports.htm" target="_blank">list of common ports</a> that may need to be opened in order for your particular application to function properly.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/thebackroomtech.wordpress.com/245/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/thebackroomtech.wordpress.com/245/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/thebackroomtech.wordpress.com/245/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/thebackroomtech.wordpress.com/245/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/thebackroomtech.wordpress.com/245/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/thebackroomtech.wordpress.com/245/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/thebackroomtech.wordpress.com/245/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/thebackroomtech.wordpress.com/245/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/thebackroomtech.wordpress.com/245/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/thebackroomtech.wordpress.com/245/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/thebackroomtech.wordpress.com/245/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/thebackroomtech.wordpress.com/245/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=thebackroomtech.com&blog=1120206&post=245&subd=thebackroomtech&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://thebackroomtech.com/2008/01/21/online-port-forwarding-tester/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bc45e50eb9d841ff9cf17d75fe766df7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Julie</media:title>
		</media:content>
	</item>
	</channel>
</rss>